NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
PyPI · #3382 most downloaded on PyPI
Last release 20 days ago
14 Sep 2026
Release timing varies
gaps range from 3 weeks to 7 months
Nearly every release is documented
notes for 7 of 7 stable releases
9 versions withdrawn
withdrawn after publishing
2 years old
16 releases · first in 2024
One column per month.
Fixed a bug where the certificates embedded in a timestamp token were treated as trusted when verifying that token.
make lint now fails when Cargo.lock is out of date with respect to Cargo.toml
macOS wheels are now self-contained: OpenSSL is vendored and statically linked like the Linux wheels. Previously the published macOS wheel baked in an
openssl@3 and failed to import on machines without that exactFixed a bug where the verification incorrectly picked the leaf certificate. This allowed an attacker who could modify a timestamp response to make a l
Bump pyca/cryptography dependency upper bound to version 47
pyca/cryptography dependency upper bound to version 47Timestamps are now verified with the timestamp time as reference time like the RFC says: this means that the certificate chain no longer needs to be v
Exposed verify_message in the actual Verify interface, not just the implementation
Exposed verify_message in the actual Verify interface, not just the implementation
(#153)
Fixed a bug where verification performed insufficient signature checks on
the timestamp response itself, rather than the response's certificate chain
Exposed verify_message in the actual Verify interface, not just the implementation
(#153)
Fixed a bug where verification performed insufficient signature checks on the timestamp response itself, rather than the response's certificate chain
mypy for type checking (#154)Added HashAlgorithm to exports of the base package module
Added HashAlgorithm to exports of the base package module (#143)
Added verify_message method to Verifier class (#144)
Slight refactoring of the tests to ease how to test with multiple TSA (#145)
Changed return value of VerifierBuilder.build() from _Verifier to Verifier: This is technically
an API change but should have minimal user impact. (#147)
hash_algorithm parameter in TimestampRequestBuilder class (#131)The Verifier now enforces that the EKU (Extended Key Usage) explicitly includes the id-kp-timeStamping OID
The Verifier now enforces that the EKU (Extended Key Usage) explicitly includes the id-kp-timeStamping OID (#120)
The Verifier now searches for the leaf certificate in the Timestamp Response instead of using the first one provided (#121)
Full Changelog: v1.0.0...v1.0.1
TimestampRequest now accepts setting the hash algorithm to SHA256 (in addition to SHA512)
Full Changelog: v0.1.2...v1.0.0
Full Changelog: https://github.com/trailofbits/rfc3161-client/compare/v0.1.2...v1.0.0
Moved maturin dependency from main project dependencies to development dependencies since it's only needed for development tasks (88)
Moved maturin dependency from main project dependencies to development dependencies
since it's only needed for development tasks (88)
Relax cryptography version requirement (91)
rfc3161-client release 0.1.0 was previously published and yanked on PyPI, preventing republication
rfc3161-client is now in beta (https://github.com/trailofbits/rfc3161-client/pull/82).
TimestampResponse now has a as_bytes method to retrieve the original request bytes
as_bytes method to retrieve the original
request bytes (#62)Full Changelog: https://github.com/trailofbits/rfc3161-client/compare/v0.0.3...v0.0.4
Magic method (__eq__ and __repr__) has been added for TimestampResponse and TimestampRequest
Magic methods (__hash__ and __repr__) have been added for TimestampResponse and TimestampRequest
__hash__ and __repr__) have been added for TimestampResponse and
TimestampRequest (#32)VerifierBuilder is now the only way to create a Verifier (#35)pyproject.toml (#30)Accuracy now correctly accepts valid inputs and enforce range invariants (#43)TSTInfo was parsed (#45)Full Changelog: https://github.com/trailofbits/rfc3161-client/compare/v0.0.1...v0.0.2
Your coding agent can read these notes before it upgrades. Set up the MCP server →